this post was submitted on 11 Aug 2023
530 points (98.2% liked)

Technology

59298 readers
6313 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 18 points 1 year ago (1 children)

Ouch, so the new system will be account based. Say goodbye to your privacy.

[–] [email protected] 5 points 1 year ago (1 children)

Unfortunately, that does seem to be the easiest solution.

~~Though how much that imposes on your privacy depends on how they implement it~~ There is no saving privacy. If it was me, I would keep everything the same, except have the checksum tied to an account and it can be checked and updated remotely.

This way, most of your transport usage informed would not be stored. In theory they could still log when the checksum is checked or changed by an official machine, leading to a vague idea of when you travel.

The points of attack would then be:

  • Somehow spoofing an official machine to talk with the server and modify the stored checksum. Very difficult if done properly.
  • Cloning someone's card and using their account credits. Relatively easy to do. To prevent this they would have to implement usage tracking so the users can check for fraudulent activity. And there goes privacy.
[–] [email protected] 2 points 1 year ago

I appreciate your detailed reply, but I believe the fight for privacy is not over. It takes a lot of time, dedication and money to fight for privacy, but it must be done.